REDHAT-BUG-1614520: Medium severity wpa_supplicant vulnerability
An issue was discovered in rsnsupp/wpa.c in wpasupplicant 2.0 through 2.6. Under certain conditions, the integrity of EAPOL-Key messages is not checked, leading to a decryption oracle. An attacker within range of the Access Point and client can abuse the vulnerability to recover sensitive information.
References:
https://papers.mathyvanhoef.com/woot2018.pdf https://w1.fi/security/2018-1/unauthenticated-eapol-key-decryption.txt
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1614520?
The severity of REDHAT-BUG-1614520 is considered high due to its potential to expose sensitive information.
How do I fix REDHAT-BUG-1614520?
To mitigate REDHAT-BUG-1614520, upgrade wpa_supplicant to version 2.7 or higher where the issue is addressed.
What are the potential impacts of REDHAT-BUG-1614520?
An attacker can exploit REDHAT-BUG-1614520 to recover sensitive information from EAPOL-Key messages.
Who is affected by REDHAT-BUG-1614520?
All users running wpa_supplicant versions 2.0 through 2.6 are affected by REDHAT-BUG-1614520.
Is there a workaround for REDHAT-BUG-1614520?
There is no specific workaround for REDHAT-BUG-1614520 other than upgrading to a secure version.